I finally read something worth reading on my used-to-be-favorite Dutch IT news site. WordPress.com servers were hacked. Usually the people there are not n00bies, so when they comment it’s usually not *facepalm*. This time I read it and went, “n00b influx” omg. I’m not one of these people that logs in and goes “What do you know Joey! It’s like this I said” to other people on that thread. That’s for elite pricks.
There was one rather weird statement in the article itself. It says without blinking “affects self hosted installations because they download updates”. Uhh. No. Anyone with any brains at all will never insert a password which will allow software to download it’s own update. As soon as they released that functionality I went “You’ve got to be kidding me”. It was the same with the “update notification”, but because WordPress rarely to never gives any problems after updating my annoyance about it quickly subsided.
Still, if they want to have you – they will have you. It’s as simple as that.
Off topic: You might think it’s strange, but I do not use any “remember my password” functionality on my browser either. I make myself remember usernames and passwords that way. I also cannot believe addons such as Firefox Sync have a “Sync my passwords” option. You’re not using that, are you?
